2019
Beyond Pixel Norm-Balls: Parametric Adversaries using an Analytically Differentiable Renderer
ICLR 2019poster
Many machine learning image classifiers are vulnerable to adversarial attacks, inputs with perturbations designed to intentionally trigger misclassification. Current adversarial methods directly alter pixel colors and evaluate against pixel norm-balls: pixel perturbations smaller than a specified ma…